Title :
Developing a Conceptual Framework for Cloud Security Assurance
Author :
Duncan, Bob ; Pym, David J. ; Whittington, Mark
Author_Institution :
Comput. Sci., Univ. of Aberdeen, Aberdeen, UK
Abstract :
Managing information security in the cloud is a challenge. Traditional checklist approaches to standards compliance may well provide compliance, but do not guarantee to provide security assurance. The complexity of cloud relationships must be acknowledged and explicitly managed by recognising the implications of self-interest of each party involved. We begin development of a conceptual modelling framework for cloud security assurance that can be used as a starting point for effective continuous security assurance, together with a high level of compliance.
Keywords :
cloud computing; security of data; cloud security assurance; conceptual modelling framework; continuous security assurance; information security management; standards compliance; Cloud computing; Complexity theory; Information security; Standards organizations; assurance model; cloud security; standards compliance;
Conference_Titel :
Cloud Computing Technology and Science (CloudCom), 2013 IEEE 5th International Conference on
Conference_Location :
Bristol
DOI :
10.1109/CloudCom.2013.144